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Abstract 

I describe the use of NMR experiments which implement Gauss sums as a method 
O for factoring numbers and discuss whether this approach can be computationally 

useful. 
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Introduction 

Several papers have recently been published [If2f3] which describe nuclear 
magnetic resonance (NMR) experiments that implement Gauss sums [4], and 
which suggest that this can be used as a method for factoring numbers. These 
experiments rely on the behaviour of the Gauss sum 
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(where N is an integer to be factored, and I is a trial factor), namely that 
A = 1 if I is indeed a factor of N, and |^4| < 1 otherwise, with the exact value 
depending on the choice of the truncation parameter M. 

Clearly this behaviour allows factors to be distinguished from non-factors. 
Note that this does not in itself provide a factoring algorithm, but simply 
a factor checking algorithm. As with any simple algorithm of this kind, in 
order to factor N it may be necessary to try all possible prime factors up 
to \^N. The number of prime numbers less than x is given by the prime 
counting function [5], ir(x) ~ x/log(x), but in practice it may be simpler to 
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just consider all possible factors up to V~N, or over some smaller range. For 
example Mehring et al. [I] analysed the number iV = 157573 = 13 x 17x23x31 
by considering trial factors between 1 and 35. 

It is also important to consider what value of M is required to reliably distin- 
guish factors from non-factors. In most cases it is relatively easy to distinguish 
these cases, but for a small number of non-factors, sometimes called ghost fac- 
tors, the Gauss sum is close to one for small values of the truncation parameter. 
It can, however, be shown [3"fE] that effective suppression of ghost factors oc- 
curs by M = yiV. It is also possible to use even smaller values of M [3] either 
by choosing values of m randomly in the range between and \/~N, rather 
than simply using all the numbers in this range, or by using generalized ex- 
ponential sums, a modification of Eq. [T] replacing the m? terms with higher 
powers. 



NMR implementations 

Several different implementations of Gauss sums using NMR have been de- 
scribed, of which the conceptually simplest approach is perhaps the differential 
excitation method [2] of Mahesh et al. This uses an ensemble of identical iso- 
lated spin- 1 nuclei in a magnetic field, which is excited by a series of small 
flip-angle pulses applied on resonance. The propagator for a single pulse can 
be written using product operator notation [7j as 

U m = exp{-i6» [I x cos <p m + I y sin <p m ] } (2) 

where 9 is the flip angle and 

(p m = 2nm 2 N/l (3) 

is the phase of the m th pulse. The propagator for the whole pulse sequence is 
given by 

U = U M ...U 1 U . (4) 

where in general the propagators for individual pulses do not commute and so 
it is necessary to use a time-ordered product. For small values of 9, however, 
the pulses approximately commute [3] so that to first order in 9 

M 

U « exp{-i6> ^2 % cos <p m + I y sin <j) m ]} (5) 

m=0 

and the overall flip angle and phase of this combined pulse, and thus the 
magnitude and phase of the resulting NMR signal, effectively encode the value 
of the desired Gauss sum. Other approaches described by Mahesh et al. [2] 
and Mehring et al. [I] are essentially equivalent. 
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A key feature of all current NMR implementations of Gauss sums is that 
they rely on the prior calculation of a set of phase angles, Eq. [3j and all the 
key properties of the Gauss sum are encoded within these phase angles. In 
particular a Gauss sum only achieves the value of unity when all the phase 
angles are integer multiples of 2tt. As m 2 is an integer this requires that N/l 
is an integer. This is, of course, precisely why Gauss sums work [2] , but it also 
makes clear that there is no need to explicitly evaluate a Gauss sum once a 
single value of <p m is known. Furthermore, calculating any value of m requires 
evaluating N/l to sufficient precision to reveal directly whether or not I is 
a factor of N. Thus current NMR methods to evaluate Gauss sums cannot 
be implemented without first implicitly determining whether or not the trial 
factor is indeed a factor, in effect rendering them pointless. 

It is useful to consider whether this explicit evaluation of N/l can be side- 
stepped. One obvious possibility is to extend Gauss sums by replacing N/l by 
a continuous parameter / and seek peaks as a function of /, which could then 
be related back to factors of N. It is easy to see, however, that this cannot 
work, as this generalisation of a Gauss sum will have peaks at every integral 
value of /, and these only identify factors when the corresponding trial number 
/ = N/f is an integer. For example [5], it is easy to distinguish 17, which is 
a factor of 157573, from 18, which is not, by using their corresponding Gauss 
sums. However it is not possible to distinguish between the peak occurring at 
/ = 9269, corresponding to the genuine factor 17, and the equivalent peak at 
/ = 9268, corresponding to the non-factor 157573/9268 » 17.0018343. 



Conclusions 

Although current NMR experiments do in fact evaluate Gauss sums they can- 
not provide a useful method for factor testing. Other experimental techniques 
have been demonstrated for evaluating Gauss sums [9~|IT0"] ; it is not immedi- 
ately clear whether these techniques are also subject to similar criticisms, and 
I do not address this point here. However, methods based on Gauss sums will 
only be useful if is possible to avoid explicit division in the pre-calculation 
stages of the algorithm, and the integral nature of I is built directly into the 
implementation. 
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